Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I’m an AppSec engineer, and work with 300+ devs and Software Engineers. I’ve worked through start phase and two acquisitions. You spot on at this point in time. I’m on the team responsible for testing m365 copilot before it rolls out to our org. A month ago I would have agreed with you 100% but now i’m leaning more to theirs a 50% chance of large scale automation happening within 5 years.

What AI was missing is the larger business context. I doesn’t know the politics behind why things are the way they are and why fixing and issue might cost the company 50k every minute or if library is updated it would break 15 business critical products without proper coordination.

M365 Copilot is bridging that gap. Right now it’s dumb and only access what you can see on OneDrive and sharepoint. With plugins and connectors it’s going to integrate into every development platform sooner or later.

I still think it’s some years out and will require a lot of human interaction before these generalized agents can be onboarded.

It’s a security nightmare for me. We basically just automated the recon for any attacker that has compromised a 365 Account. In my opinion it’s moving to fast even when it’s dumb as bricks and has the context of a 2 year old.

I’ve been using it to compare static analysis findings and m365 copilot returns a lot of the same findings with mitigation suggestion. It’s still not 100% though, but either is any secuirty testing.

I give it two years before the grunt work is fully automated



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: